Remote
Remote
Senior
Full Time
💰$165,000 - $190,000
remotesecuritycloudkubernetesseniorfull-time
Requirements
- •5+ years in security engineering with hands-on delivery across system hardening, security engineering projects, and peer mentorship
- •Strong technical proficiency in Kubernetes security, including network policy orchestration, admission control (Kyverno), and container hardening protocols
- •Experience with threat modeling for applications built using Node.js, TypeScript, Python or Go
- •Hands-on experience supporting secure SDLC practices and CI/CD safeguards using GitHub Actions
- •Experience hardening Infrastructure-as-Code (Terraform) and managing enterprise secrets via AWS Secrets Manager, Vault, or similar platforms
- •Solid experience across the vulnerability management lifecycle from triage to production remediation
- •Ability to apply compliance frameworks like HITRUST and SOC 2 into pragmatic technical controls
- •Strong written communication skills for documentation and collaboration in a remote asynchronous culture
- •Proficiency in AI tools and techniques, including prompt engineering and automation using multiple large language model platforms
What You'll Do
- •Own Cloud Security Posture Management including Kubernetes and Container security practices, admission control, network policies, image integrity, and environment hardening
- •Manage comprehensive vulnerability lifecycles, prioritizing remediation based on actual production exposure
- •Collaborate with Platform Engineering to support secure SDLC and CI/CD safeguards, focusing on artifact validity and pipeline integrity
- •Convert HITRUST and SOC 2 compliance frameworks into actionable technical configurations and operational controls
- •Evaluate and secure infrastructure-as-code across all environments
- •Execute incident response duties, including forensic investigation and blameless post-mortem analyses
- •Contribute to security standards within Engineering through design reviews, collaborative pairing, and mentorship of peers
- •Support bug bounty triage and maintain professional engagement with external security researchers
Nice to Have
- •Experience securing autonomous agentic loops and tool-calling frameworks, understanding Indirect Prompt Injection and Human-in-the-Loop guardrails
- •Technical familiarity with securing the Model Context Protocol (MCP) for context isolation, sandboxing, and identity propagation between LLMs and private data sources
- •Hands-on application of NIST AI RMF, OWASP Top 10 for LLMs in production
- •Experience with Go, Node.js, or TypeScript
- •VPN administration or enterprise network security experience
- •Experience with dependency management tooling like Renovate or Dependabot
Benefits
- •100% remote first culture (must be based in the US)
- •Unlimited Flexible Time Off
- •15+ Observed Holidays
- •Rest & R^Charge days (guaranteed a 3-day weekend each month)
- •R^Charge (6 weeks paid sabbatical + stipend)
- •401k match 50% for up to 8% on Day 1
- •Medical/Dental/Vision Benefits on Day 1
- •HSA & FSA, Life, Disability, Medical Travel & Employee Assistance Program
- •Paid Parental Leave (16 weeks)
- •Productivity Stipend & Wellness Fund
- •Redox Issued MacBook
- •Virtual and/or in-person Team & Company Events
- •Stock Options
- •Employee Referral Bonus Program
